Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2010-3136


Untrusted search path vulnerability in Skype 4.2.0.169 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wab32.dll that is located in the same folder as a .skype file.


Security Impact Summary

CVE-2010-3136 is a security vulnerability that . Impacting 1 product from skype organizations running these solutions should prioritize assessment and patching.

Historical Context

Documented in 2010, this vulnerability occurred amid the cloud computing expansion era, where traditional network perimeter security models were being reevaluated. Organizations were transitioning from isolated infrastructure to interconnected systems, creating new attack surfaces that vulnerabilities like this could exploit.


Published

2010-08-26T18:36:36.107

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 9.3 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

8.6

Impact Score

10.0

Weaknesses
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application skype skype ≤ 4.2.0.169 Yes
Application skype skype 0.90.0.5 Yes
Application skype skype 0.90.0.10 Yes
Application skype skype 0.91.0.2 Yes
Application skype skype 0.92.0.4 Yes
Application skype skype 0.93.0.18 Yes
Application skype skype 0.93.1.1 Yes
Application skype skype 0.94.0.19 Yes
Application skype skype 0.94.0.28 Yes
Application skype skype 0.95.0.11 Yes
Application skype skype 0.95.0.25 Yes
Application skype skype 0.95.0.36 Yes
Application skype skype 0.95.0.40 Yes
Application skype skype 0.96.0.1 Yes
Application skype skype 0.96.0.3 Yes
Application skype skype 0.97.0.1 Yes
Application skype skype 0.97.0.3 Yes
Application skype skype 0.97.0.6 Yes
Application skype skype 0.97.0.40 Yes
Application skype skype 0.98.0.04 Yes
Application skype skype 0.98.0.6 Yes
Application skype skype 0.98.0.28 Yes
Application skype skype 0.98.0.42 Yes
Application skype skype 0.98.0.68 Yes
Application skype skype 1.0.0.9 Yes
Application skype skype 1.0.0.10 Yes
Application skype skype 1.0.0.18 Yes
Application skype skype 1.0.0.29 Yes
Application skype skype 1.0.0.94 Yes
Application skype skype 1.0.0.97 Yes
Application skype skype 1.0.0.100 Yes
Application skype skype 1.0.0.106 Yes
Application skype skype 1.1.0.6 Yes
Application skype skype 1.1.0.73 Yes
Application skype skype 1.1.0.79 Yes
Application skype skype 1.2.0.37 Yes
Application skype skype 1.2.0.41 Yes
Application skype skype 1.2.0.48 Yes
Application skype skype 1.3.0.45 Yes
Application skype skype 1.3.0.48 Yes
Application skype skype 1.3.0.51 Yes
Application skype skype 1.3.0.54 Yes
Application skype skype 1.3.0.55 Yes
Application skype skype 1.3.0.57 Yes
Application skype skype 1.3.0.60 Yes
Application skype skype 1.3.0.66 Yes
Application skype skype 1.4.0.71 Yes
Application skype skype 1.4.0.78 Yes
Application skype skype 1.4.0.84 Yes
Application skype skype 2.0.0.69 Yes
Application skype skype 2.0.0.73 Yes
Application skype skype 2.0.0.79 Yes
Application skype skype 2.0.0.81 Yes
Application skype skype 2.0.0.90 Yes
Application skype skype 2.0.0.97 Yes
Application skype skype 2.0.0.103 Yes
Application skype skype 2.0.0.105 Yes
Application skype skype 2.0.0.107 Yes
Application skype skype 2.5.0.72 Yes
Application skype skype 2.5.0.82 Yes
Application skype skype 2.5.0.91 Yes
Application skype skype 2.5.0.113 Yes
Application skype skype 2.5.0.122 Yes
Application skype skype 2.5.0.126 Yes
Application skype skype 2.5.0.130 Yes
Application skype skype 2.5.0.137 Yes
Application skype skype 2.5.0.141 Yes
Application skype skype 2.5.0.151 Yes
Application skype skype 2.5.0.154 Yes
Application skype skype 2.6.0.67 Yes
Application skype skype 2.6.0.74 Yes
Application skype skype 2.6.0.81 Yes
Application skype skype 2.6.0.97 Yes
Application skype skype 2.6.0.103 Yes
Application skype skype 2.6.0.105 Yes
Application skype skype 3.0.0.106 Yes
Application skype skype 3.0.0.123 Yes
Application skype skype 3.0.0.137 Yes
Application skype skype 3.0.0.154 Yes
Application skype skype 3.0.0.190 Yes
Application skype skype 3.0.0.198 Yes
Application skype skype 3.0.0.205 Yes
Application skype skype 3.0.0.209 Yes
Application skype skype 3.0.0.214 Yes
Application skype skype 3.0.0.216 Yes
Application skype skype 3.0.0.217 Yes
Application skype skype 3.0.0.218 Yes
Application skype skype 3.1.0.112 Yes
Application skype skype 3.1.0.134 Yes
Application skype skype 3.1.0.144 Yes
Application skype skype 3.1.0.147 Yes
Application skype skype 3.1.0.150 Yes
Application skype skype 3.1.0.152 Yes
Application skype skype 3.2.0.53 Yes
Application skype skype 3.2.0.63 Yes
Application skype skype 3.2.0.82 Yes
Application skype skype 3.2.0.115 Yes
Application skype skype 3.2.0.145 Yes
Application skype skype 3.2.0.148 Yes
Application skype skype 3.2.0.152 Yes
Application skype skype 3.2.0.158 Yes
Application skype skype 3.2.0.163 Yes
Application skype skype 3.2.0.175 Yes
Application skype skype 3.5.0.107 Yes
Application skype skype 3.5.0.158 Yes
Application skype skype 3.5.0.178 Yes
Application skype skype 3.5.0.202 Yes
Application skype skype 3.5.0.214 Yes
Application skype skype 3.5.0.229 Yes
Application skype skype 3.5.0.234 Yes
Application skype skype 3.5.0.239 Yes
Application skype skype 3.6.0.127 Yes
Application skype skype 3.6.0.159 Yes
Application skype skype 3.6.0.216 Yes
Application skype skype 3.6.0.244 Yes
Application skype skype 3.6.0.248 Yes
Application skype skype 3.8.0.96 Yes
Application skype skype 3.8.0.115 Yes
Application skype skype 3.8.0.139 Yes
Application skype skype 3.8.0.144 Yes
Application skype skype 3.8.0.154 Yes
Application skype skype 3.8.0.180 Yes
Application skype skype 3.8.0.188 Yes
Application skype skype 4.0 Yes
Application skype skype 4.0.0.145 Yes
Application skype skype 4.0.0.150 Yes
Application skype skype 4.0.0.155 Yes
Application skype skype 4.0.0.161 Yes
Application skype skype 4.0.0.166 Yes
Application skype skype 4.0.0.168 Yes
Application skype skype 4.0.0.169 Yes
Application skype skype 4.0.0.176 Yes
Application skype skype 4.0.0.181 Yes
Application skype skype 4.0.0.206 Yes
Application skype skype 4.0.0.215 Yes
Application skype skype 4.0.0.216 Yes
Application skype skype 4.0.0.224 Yes
Application skype skype 4.0.0.226 Yes
Application skype skype 4.0.0.227 Yes
Application skype skype 4.1.0.130 Yes
Application skype skype 4.1.0.130 Yes
Application skype skype 4.1.0.136 Yes
Application skype skype 4.1.0.141 Yes
Application skype skype 4.1.0.166 Yes
Application skype skype 4.1.0.179 Yes
Application skype skype 4.2.0.141 Yes
Application skype skype 4.2.0.152 Yes
Application skype skype 4.2.0.155 Yes
Application skype skype 4.2.0.158 Yes
Application skype skype 4.2.0.163 Yes
Application skype skype 4.2.0.166 Yes

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For skype's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.